Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 28-04-2026
Ran by nadas (administrator) on NADĚNKA (HP HP Laptop 15s-fq5xxx) (06-05-2026 18:49:54)
Running from C:\Users\nadas\Downloads\kontrola logu viry\FRST64.exe
Loaded Profiles: nadas
Platform: Microsoft Windows 11 Home Version 25H2 26200.8246 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\Program Files\McAfee\WebAdvisor\servicehost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(C:\Program Files\TeamViewer\TeamViewer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\147.0.3912.98\msedgewebview2.exe <12>
(C:\Program Files\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> ) C:\Program Files\TeamViewer\crashpad_handler.exe <2>
(C:\Program Files\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer.exe
(C:\Program Files\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\tv_w32.exe
(C:\Program Files\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\tv_x64.exe
(C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_3.2.24.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityBackground.exe ->) (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_3.2.24.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe
(DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_db0ee1e66e6d408e\x64\SysInfoCap.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_db0ee1e66e6d408e\x64\BridgeCommunication.exe
(DriverStore\FileRepository\ipf_cpu.inf_amd64_fe2967a6eb0d3a7d\ipf_uf.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ipf_cpu.inf_amd64_fe2967a6eb0d3a7d\ipf_helper.exe
(DriverStore\FileRepository\seapo64.inf_amd64_deaeb20891c6fa3a\SECOMN64.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Sonitude, Inc.) C:\Windows\System32\DriverStore\FileRepository\seapo64.inf_amd64_deaeb20891c6fa3a\SECOCL64.exe
(ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc) C:\Program Files\WindowsApps\AD2F1837.myHP_54.52610.3208.0_x64__v10z8vjag6ke6\win32\HP.ContextAware.exe
(ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_3.2.24.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityBackground.exe
(ETDService.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDCtrl.exe
(HP Inc. -> HP Inc.) C:\Program Files\HP\HP Media Network\HPMediaNetwork.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(services.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDService.exe
(services.exe ->) (FOR TESTING ONLY - IPF_PreProd_Cert -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dtt_sw.inf_amd64_683097297aaa9bb4\ipfsvc.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_ef460d1f2a35fc16\x64\TouchpointAnalyticsClientService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_db0ee1e66e6d408e\x64\AppHelperCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_db0ee1e66e6d408e\x64\DiagsCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_db0ee1e66e6d408e\x64\NetworkCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_db0ee1e66e6d408e\x64\SysInfoCap.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_8660e4d6e8832471\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_64dc54263337697d\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ipf_cpu.inf_amd64_fe2967a6eb0d3a7d\ipf_uf.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\DriverStore\FileRepository\intcoed.inf_amd64_04f57d4d19c5b315\AS\IAS\IntelAudioService.exe
(services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Sonitude, Inc.) C:\Windows\System32\DriverStore\FileRepository\seapo64.inf_amd64_deaeb20891c6fa3a\SECOMN64.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\NisSrv.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Windows\RtkWiFiManServ.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_c7598999a3513b7d\RtkAudUService64.exe <3>
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(sihost.exe ->) (ED346674-0FA1-4272-85CE-3187C9C86E26 -> ) C:\Program Files\WindowsApps\AD2F1837.OMENCommandCenter_1101.2604.2.0_x64__v10z8vjag6ke6\OmenCommandCenterApp\OmenBGMonitor.exe <8>
(svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\OmenInstallMonitor\OmenInstallMonitor.exe
(svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\Overlay\OverlayHelper.exe
(svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\SystemOptimizer\SystemOptimizer.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_c7598999a3513b7d\RtkAudUService64.exe [2227656 2024-10-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKU\S-1-5-21-965734613-4118459871-2446318820-1001\...\Run: [HPSEU_Host_Launcher] => C:\Program Files\HP\HP System Event Utility\Host Launcher\HpseuHostLauncher.exe [545864 2025-11-07] (HP Inc. -> HP Inc.)
HKU\S-1-5-21-965734613-4118459871-2446318820-1001\...\Run: [MicrosoftEdgeAutoLaunch_9E35406053A46342513896AD9749A30C] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --win-session-start [5026632 2026-04-30] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-965734613-4118459871-2446318820-1001\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\nadas\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe" [105677672 2026-04-30] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-965734613-4118459871-2446318820-1001\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\nadas\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe" (No File)
HKU\S-1-5-21-965734613-4118459871-2446318820-1001\...\RunOnce: [Uninstall 26.062.0402.0002] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\nadas\AppData\Local\Microsoft\OneDrive\26.062.0402.0002" [0 2026-04-30] () <==== ATTENTION [zero byte File/Folder]
HKLM\...\Windows x64\Print Processors\Canon G3060 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDGJ.DLL [525824 2021-09-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor G3060 series: C:\WINDOWS\system32\CNMLMGJ.DLL [962560 2021-09-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [3971224 2026-04-18] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\147.0.7727.138\Installer\chrmstp.exe [7428248 2026-05-01] (Google LLC -> Google LLC)

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {8B378E20-FE1B-4078-B3E3-FFCC864BC8B4} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem149.0.7814.0{06737AC8-C74E-4EB8-A857-D2FFB906BAEC} => C:\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\updater.exe [8770200 2026-04-28] (Google LLC -> Google LLC)
Task: {5F543651-193C-4CD2-B189-83529BB35E50} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Update Notice => C:\Program Files (x86)\HP\HP Support Framework\Resources\BingPopup\BingPopup.exe [1015880 2026-01-27] (HP Inc. -> HP Inc.) -> C:\Program Files (x86)\HP\HP Support Framework\\/show
Task: {9BC44C52-1655-4B15-A90A-B9546DEA7458} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [480264 2026-01-27] (HP Inc. -> HP Inc.)
Task: {CB9988A8-82CA-4F51-A69A-3B4D44826C6D} - System32\Tasks\HP\Consent Manager Launcher => C:\WINDOWS\system32\sc.exe [102400 2025-07-09] (Microsoft Windows -> Microsoft Corporation) -> start hptouchpointanalyticsservice
Task: {DB0E71A0-1BFD-4AE9-8A6F-924AF299BD79} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16380720 2026-05-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {2BE69040-AF89-4DDF-BB50-99DB0AB537B0} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28547472 2026-04-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {0803997E-2DC5-4D05-8CAE-7D6E3853E108} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [73560 2026-05-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {3C90E9CB-F127-403D-8C17-8D4E56C2F958} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28547472 2026-04-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {0188D063-A2A6-4ECF-AFA7-905A8D3F99ED} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [426776 2026-05-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {9E375D8D-89E3-4CB2-89A6-5772DD53D3BC} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [426776 2026-05-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {81895592-6FD6-47E9-8998-E886AF83471F} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [1366888 2026-04-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {CBE980AE-4DE3-4EE9-937B-A9A2F23350E4} - System32\Tasks\Microsoft\Office\Office Startup Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16380720 2026-05-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe  (No File)
Task: {27CE9D59-9D48-4D29-99BC-64657AEBA494} - System32\Tasks\Microsoft\Windows\Security\Pwdless\IntelligentPwdlessTask => {8702A841-D5CA-47C3-812D-9CEDC304C200}
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe  (No File)
Task: {407ABAD2-104F-442E-9D48-E195C5883A7F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MpCmdRun.exe [1790616 2026-04-13] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A43A98FA-A27C-42AA-AE60-F5D1EFA5D7BA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MpCmdRun.exe [1790616 2026-04-13] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {2A9BF5EA-C5C3-4CDF-8436-6CF27EACD33E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MpCmdRun.exe [1790616 2026-04-13] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {3F90BEC7-0B35-4C21-9D96-86EBD4FBBA3E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MpCmdRun.exe [1790616 2026-04-13] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {93241EB7-35BC-43F3-92DA-5C5761312F10} - System32\Tasks\OmenInstallMonitor => C:\Program Files\HP\OmenInstallMonitor\OmenInstallMonitor.exe [76296 2026-04-28] (HP Inc. -> HP Inc.)
Task: {2C89A4CD-C345-4D65-9F56-2A56CB4C7907} - System32\Tasks\OmenInstallMonitorCustomEvent => C:\Program Files\HP\OmenInstallMonitor\OmenInstallMonitor.exe [76296 2026-04-28] (HP Inc. -> HP Inc.)
Task: {6F5FB591-3478-4551-8A4C-C5DD12C2AD97} - System32\Tasks\OmenInstallMonitorCustomEvent-sid-S-1-5-21-965734613-4118459871-2446318820-1001 => C:\Program Files\HP\OmenInstallMonitor\OmenInstallMonitor.exe [76296 2026-04-28] (HP Inc. -> HP Inc.)
Task: {2A96BC23-2FA7-432E-9056-CC81F1CFE445} - System32\Tasks\OmenInstallMonitor-sid-S-1-5-21-965734613-4118459871-2446318820-1001 => C:\Program Files\HP\OmenInstallMonitor\OmenInstallMonitor.exe [76296 2026-04-28] (HP Inc. -> HP Inc.)
Task: {EDD27796-B037-4BFC-A433-C74760483632} - System32\Tasks\OmenOverlay => C:\Program Files\HP\Overlay\OverlayHelper.exe [68104 2025-10-16] (HP Inc. -> HP Inc.)
Task: {0A0B157D-3084-4CF9-AC00-08BC621F1A0A} - System32\Tasks\OmenOverlayCustomEvent => C:\Program Files\HP\Overlay\OverlayHelper.exe [68104 2025-10-16] (HP Inc. -> HP Inc.)
Task: {BFF43C2E-C3A2-4E52-AA77-A3D7E9B7FF66} - System32\Tasks\OmenOverlayCustomEvent-sid-S-1-5-21-965734613-4118459871-2446318820-1001 => C:\Program Files\HP\Overlay\OverlayHelper.exe [68104 2025-10-16] (HP Inc. -> HP Inc.)
Task: {8A81A6FC-FF72-4305-944C-76B59E963E51} - System32\Tasks\OmenOverlay-sid-S-1-5-21-965734613-4118459871-2446318820-1001 => C:\Program Files\HP\Overlay\OverlayHelper.exe [68104 2025-10-16] (HP Inc. -> HP Inc.)
Task: {3888C641-C52F-444A-B6DF-948F4C97FA43} - System32\Tasks\SystemOptimizer => C:\Program Files\HP\SystemOptimizer\SystemOptimizer.exe [168456 2026-04-28] (HP Inc. -> HP Inc.)
Task: {E7D666ED-5439-4BD8-90DA-62E863F827AF} - System32\Tasks\SystemOptimizerCustomEvent => C:\Program Files\HP\SystemOptimizer\SystemOptimizer.exe [168456 2026-04-28] (HP Inc. -> HP Inc.)
Task: {E97D78E8-038D-47BC-AE70-FF10734B198C} - System32\Tasks\SystemOptimizerCustomEvent-sid-S-1-5-21-965734613-4118459871-2446318820-1001 => C:\Program Files\HP\SystemOptimizer\SystemOptimizer.exe [168456 2026-04-28] (HP Inc. -> HP Inc.)
Task: {145AF407-3556-4A4E-B2F1-291D83A11B0A} - System32\Tasks\SystemOptimizer-sid-S-1-5-21-965734613-4118459871-2446318820-1001 => C:\Program Files\HP\SystemOptimizer\SystemOptimizer.exe [168456 2026-04-28] (HP Inc. -> HP Inc.)
Task: {91FAA65B-B8E3-4AD1-B8D2-2C35A76D2001} - System32\Tasks\SystemOptimizerTemp => C:\Users\nadas\AppData\Local\Temp\HP\SystemOptimizerTemp\SystemOptimizer.exe  -update (No File) <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{e69d42af-e1e3-4ae5-8a2c-bbe1166158ba}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{e69d42af-e1e3-4ae5-8a2c-bbe1166158ba}: [DhcpDomain] home
Tcpip\..\Interfaces\{e69d42af-e1e3-4ae5-8a2c-bbe1166158ba}\445636F6: [DhcpNameServer] 8.8.8.8 8.8.4.4

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2026-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.23 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2025-12-31] (VideoLAN -> VideoLAN)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-12-06] (Microsoft Corporation -> Microsoft Corporation)

Edge: 
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\nadas\AppData\Local\Microsoft\Edge\User Data\Default [2026-05-06]
Edge Extension: (Dokumenty Google offline) - C:\Users\nadas\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-04-20]
Edge Extension: (Edge relevant text changes) - C:\Users\nadas\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-01-07]

Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\nadas\AppData\Local\Google\Chrome\User Data\Default [2026-05-06]
CHR Notifications: Default -> hxxps://axelarigato.com; hxxps://cs.duolingo.com; hxxps://modivo.cz; hxxps://us.vestiairecollective.com; hxxps://www.denik.cz; hxxps://www.internetcorkboard.com; hxxps://www.invia.cz; hxxps://www.joom.com; hxxps://www.kupi.cz; hxxps://www.lacoste.cz; hxxps://www.letakomat.cz; hxxps://www.megaknihy.cz; hxxps://www.plnapenezenka.cz; hxxps://www.vivantis.cz
CHR Extension: (McAfee® WebAdvisor) - C:\Users\nadas\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2026-03-16]
CHR Extension: (Dokumenty Google offline) - C:\Users\nadas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-04-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\nadas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2025-01-07]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13345080 2026-04-24] (Microsoft Corporation -> Microsoft Corporation)
R2 dptftcs; C:\WINDOWS\System32\DriverStore\FileRepository\dtt_sw.inf_amd64_683097297aaa9bb4\ipfsvc.exe [562040 2024-05-24] (FOR TESTING ONLY - IPF_PreProd_Cert -> Intel Corporation)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [475680 2023-04-14] (HP Inc. -> HP Inc.)
R2 HPAppHelperCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_db0ee1e66e6d408e\x64\AppHelperCap.exe [911560 2026-03-16] (HP Inc. -> HP Inc.)
R2 HPDiagsCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_db0ee1e66e6d408e\x64\DiagsCap.exe [909512 2026-03-16] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_db0ee1e66e6d408e\x64\NetworkCap.exe [905920 2026-03-16] (HP Inc. -> HP Inc.)
R2 HPSysInfoCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_db0ee1e66e6d408e\x64\SysInfoCap.exe [911048 2026-03-16] (HP Inc. -> HP Inc.)
R2 HpTouchpointAnalyticsService; C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_ef460d1f2a35fc16\x64\TouchpointAnalyticsClientService.exe [639784 2025-10-01] (HP Inc. -> HP Inc.)
S2 Intel(R) Platform License Manager Service; C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\PlatformLicenseManagerService.exe [741488 2024-01-13] (Intel Corporation -> Intel(R) Corporation)
R2 IntelAudioService; C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_04f57d4d19c5b315\AS\IAS\IntelAudioService.exe [531032 2024-02-05] (Intel Corporation -> Intel)
R2 ipfsvc; C:\WINDOWS\System32\DriverStore\FileRepository\ipf_cpu.inf_amd64_fe2967a6eb0d3a7d\ipf_uf.exe [3084992 2024-05-21] (Intel Corporation -> Intel Corporation)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [976368 2026-05-01] (McAfee, LLC -> McAfee, LLC)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MpDefenderCoreService.exe [2088128 2026-04-13] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 RtkWiFiManServ; C:\WINDOWS\RtkWiFiManServ.exe [822632 2024-07-23] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
R2 SECOMNService; C:\WINDOWS\System32\DriverStore\FileRepository\seapo64.inf_amd64_deaeb20891c6fa3a\SECOMN64.exe [1087496 2024-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Sonitude, Inc.)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [26384240 2026-04-01] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\NisSrv.exe [4480592 2026-04-13] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26030.3011-0\MsMpEng.exe [290744 2026-04-13] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AmUStor; C:\WINDOWS\system32\drivers\AmUStorU.sys [144816 2023-01-05] (Alcorlink Corp. -> )
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [573440 2025-03-02] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [204800 2025-03-02] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [110592 2025-03-02] (Microsoft Corporation) [File not signed]
R0 fse; C:\WINDOWS\System32\drivers\fse.sys [226688 2025-12-10] (Microsoft Windows -> Microsoft Corporation)
R3 HPCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_1421dec2010cc057\x64\hpcustomcapdriver.sys [18984 2024-05-07] (Microsoft Windows Hardware Compatibility Publisher -> HP Inc.)
R2 HpReadHWData; C:\WINDOWS\system32\drivers\HpReadHWData.sys [60072 2026-02-05] (HP Inc. -> Windows (R) Win 7 DDK provider)
R3 iaLPSS2_GPIO2_ADL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_adl.inf_amd64_6f8ae740d22247ce\iaLPSS2_GPIO2_ADL.sys [141288 2024-05-15] (Intel Corporation -> Intel Corporation)
R3 iaLPSS2_I2C_ADL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_i2c_adl.inf_amd64_563fbcd35feb69a6\iaLPSS2_I2C_ADL.sys [211432 2024-05-15] (Intel Corporation -> Intel Corporation)
R3 IntelGNA; C:\WINDOWS\System32\DriverStore\FileRepository\gna.inf_amd64_8e2f374849f1eba9\gna.sys [90304 2024-04-25] (Intel Corporation -> Intel Corporation)
R3 ipf_acpi; C:\WINDOWS\System32\DriverStore\FileRepository\ipf_acpi.inf_amd64_c4581e5c36b81f6c\ipf_acpi.sys [88656 2024-05-21] (Intel Corporation -> Intel Corporation)
R3 ipf_cpu; C:\WINDOWS\System32\DriverStore\FileRepository\ipf_cpu.inf_amd64_fe2967a6eb0d3a7d\ipf_cpu.sys [88144 2024-05-21] (Intel Corporation -> Intel Corporation)
R3 ipf_lf; C:\WINDOWS\System32\DriverStore\FileRepository\ipf_cpu.inf_amd64_fe2967a6eb0d3a7d\ipf_lf.sys [499392 2024-05-21] (Intel Corporation -> Intel Corporation)
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [82352 2026-02-10] (Microsoft Windows -> Microsoft Corporation)
S2 l1vhlwf; C:\WINDOWS\System32\drivers\l1vhlwf.sys [144872 2026-04-15] (Microsoft Windows -> Microsoft Corporation)
S3 vmbusproxy; C:\WINDOWS\system32\drivers\vmbusproxy.sys [98304 2025-06-13] (Microsoft Windows -> Microsoft Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [21888 2026-04-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [647560 2026-04-13] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [100744 2026-04-13] (Microsoft Windows -> Microsoft Corporation)
R3 WSDPrintDevice; C:\WINDOWS\System32\DriverStore\FileRepository\wsdprint.inf_amd64_1f9e32519098c0b6\WSDPrint.sys [57344 2025-03-02] (Microsoft Windows -> Microsoft Corporation)
R3 WSDScan; C:\WINDOWS\System32\DriverStore\FileRepository\sti.inf_amd64_a6dc64e436f22951\WSDScan.sys [61440 2025-09-10] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-05-04 15:01 - 2026-05-04 15:01 - 003701439 _____ C:\Users\nadas\Desktop\DPFDP7-6062250172-20260504-102328-pracovni.xml
2026-05-02 23:49 - 2026-05-02 23:49 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2026-04-30 08:25 - 2026-05-06 12:49 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-04-30 07:42 - 2026-05-06 18:50 - 000014573 _____ C:\Users\nadas\AppData\LocalLow\185bbeada1458bb476a12f95a86a8bda691c769cbdb7aa81a916e99dc99221b7
2026-04-30 07:42 - 2026-05-06 18:50 - 000000130 _____ C:\Users\nadas\AppData\LocalLow\4b42290e597e875e08bb2feb9775c83c644605c094ac2d1e5e1bbe357bb6f7db
2026-04-21 21:32 - 2026-04-21 21:32 - 000714110 _____ C:\WINDOWS\system32\perfh005.dat
2026-04-21 21:32 - 2026-04-21 21:32 - 000163306 _____ C:\WINDOWS\system32\perfc005.dat
2026-04-20 14:54 - 2026-04-20 14:54 - 000049984 _____ C:\Users\nadas\Downloads\14406013952568.pdf
2026-04-15 19:04 - 2026-04-15 19:04 - 000036843 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2026-04-15 19:04 - 2026-04-15 19:04 - 000036843 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2026-04-15 19:04 - 2026-04-15 19:04 - 000004575 _____ C:\WINDOWS\system32\ResPriUHMImageList
2026-04-15 19:04 - 2026-04-15 19:04 - 000004575 _____ C:\WINDOWS\system32\ResPriLMImageList
2026-04-15 19:04 - 2026-04-15 19:04 - 000004575 _____ C:\WINDOWS\system32\ResPriImageList
2026-04-15 19:04 - 2026-04-15 19:04 - 000004575 _____ C:\WINDOWS\system32\ResPriHMImageList
2026-04-15 15:05 - 2026-04-15 15:05 - 000049638 _____ C:\Users\nadas\Downloads\14406014005093.pdf
2026-04-15 15:05 - 2026-04-15 15:05 - 000049638 _____ C:\Users\nadas\Downloads\14406014005093 (1).pdf

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-05-06 18:51 - 2025-01-08 20:09 - 001854265 _____ C:\Users\nadas\AppData\LocalLow\b995432a321c08f1bc82cb7cbc826b427df602f0a295f6640cc2b207ebfa1a1b
2026-05-06 18:51 - 2025-01-07 16:23 - 000000000 ____D C:\Users\nadas\AppData\Local\D3DSCache
2026-05-06 18:50 - 2025-12-27 20:20 - 000000000 ____D C:\FRST
2026-05-06 18:50 - 2025-01-07 16:25 - 000000000 ____D C:\Users\nadas\AppData\Local\OGH
2026-05-06 18:50 - 2025-01-07 16:22 - 000000000 ___RD C:\Users\nadas\OneDrive
2026-05-06 18:50 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-05-06 18:49 - 2025-11-21 15:35 - 000000000 ____D C:\Program Files\TeamViewer
2026-05-06 18:49 - 2025-08-13 20:41 - 000011216 _____ C:\Users\nadas\AppData\LocalLow\8fc71774af14f8786fda4702e915e889ccacb2c2c4f37b7d85a57f492822c7b0
2026-05-06 18:49 - 2025-03-02 04:28 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-05-06 18:49 - 2025-03-02 04:26 - 000006424 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2026-05-06 18:49 - 2024-05-06 06:45 - 000000000 ____D C:\Program Files\HP
2026-05-06 18:49 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps
2026-05-06 18:49 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ServiceState
2026-05-06 18:49 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-05-06 18:49 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-05-06 18:48 - 2025-12-27 20:23 - 000000130 _____ C:\Users\nadas\AppData\LocalLow\23c6ad22c452b482a4ef56aa50c2022d54b305209b0a513330f4acd59e62e03a
2026-05-06 18:48 - 2024-04-01 09:21 - 001048576 _____ C:\WINDOWS\system32\config\BBI
2026-05-06 18:48 - 2022-11-03 06:32 - 000012288 ___SH C:\DumpStack.log.tmp
2026-05-06 18:46 - 2025-12-27 20:23 - 000214579 _____ C:\Users\nadas\AppData\LocalLow\e04b6994c2b7fcf060f719bbf7ce52c94fcbcac6c15d1e525f5b24870e25bab9
2026-05-06 18:41 - 2026-01-24 18:43 - 000000000 ____D C:\Users\nadas\Downloads\kontrola logu viry
2026-05-06 18:34 - 2025-03-02 04:23 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2026-05-02 15:12 - 2022-11-03 06:32 - 000002443 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-05-02 15:12 - 2022-11-03 06:32 - 000002281 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2026-05-02 15:11 - 2024-05-06 06:47 - 000000000 ____D C:\Program Files\Microsoft Office
2026-05-01 03:14 - 2025-01-07 16:24 - 000002254 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-05-01 03:14 - 2025-01-07 16:24 - 000002213 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2026-04-30 23:31 - 2025-03-02 04:28 - 000003638 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-04-30 23:31 - 2025-03-02 04:28 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2026-04-30 14:06 - 2025-03-02 04:28 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-965734613-4118459871-2446318820-1001
2026-04-30 14:06 - 2025-03-02 04:28 - 000003570 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-965734613-4118459871-2446318820-1001
2026-04-30 14:06 - 2025-03-02 04:28 - 000003362 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-965734613-4118459871-2446318820-1001
2026-04-30 14:06 - 2025-01-07 16:22 - 000002386 _____ C:\Users\nadas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-04-30 07:43 - 2025-03-06 13:55 - 000004474 _____ C:\WINDOWS\system32\Tasks\OmenInstallMonitorCustomEvent-sid-S-1-5-21-965734613-4118459871-2446318820-1001
2026-04-30 07:43 - 2025-03-06 13:55 - 000004072 _____ C:\WINDOWS\system32\Tasks\OmenInstallMonitor-sid-S-1-5-21-965734613-4118459871-2446318820-1001
2026-04-30 07:41 - 2025-03-06 13:53 - 000004450 _____ C:\WINDOWS\system32\Tasks\SystemOptimizerCustomEvent-sid-S-1-5-21-965734613-4118459871-2446318820-1001
2026-04-30 07:41 - 2025-03-06 13:53 - 000004048 _____ C:\WINDOWS\system32\Tasks\SystemOptimizer-sid-S-1-5-21-965734613-4118459871-2446318820-1001
2026-04-21 21:32 - 2025-03-02 04:45 - 001707676 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-04-21 21:32 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF
2026-04-15 21:24 - 2025-03-02 04:23 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK
2026-04-15 21:21 - 2025-03-02 04:23 - 000592864 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2026-04-15 21:20 - 2025-07-09 22:00 - 000000000 ____D C:\WINDOWS\system32\ruxim
2026-04-15 21:20 - 2024-04-01 18:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2026-04-15 21:20 - 2024-04-01 18:28 - 000000000 ____D C:\WINDOWS\SysWOW64\cs
2026-04-15 21:20 - 2024-04-01 18:28 - 000000000 ____D C:\WINDOWS\system32\cs
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ur-PK
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ug-CN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\tt-RU
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\te-IN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ta-IN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\sq-AL
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-plocm
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-ploc
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-IN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\or-IN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\nn-NO
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ne-NP
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mt-MT
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mr-IN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ml-IN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mk-MK
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lo-LA
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lb-LU
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kok-IN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kn-IN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\km-KH
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kk-KZ
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ka-GE
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\is-IS
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\hy-AM
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\hi-IN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gu-IN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gl-ES
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ga-IE
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\fil-PH
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\fa-IR
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\cy-GB
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-IN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\be-BY
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\as-IN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\am-ET
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\af-ZA
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\vi-VN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ur-PK
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ug-CN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\tt-RU
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\te-IN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ta-IN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\sq-AL
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\setup
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\quz-PE
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\qps-plocm
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\qps-ploc
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\pa-IN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\or-IN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\nn-NO
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ne-NP
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mt-MT
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mr-IN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ml-IN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mk-MK
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lo-LA
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lb-LU
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kok-IN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kn-IN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\km-KH
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kk-KZ
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ka-GE
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\is-IS
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\id-ID
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\hy-AM
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\hi-IN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gu-IN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gl-ES
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gd-GB
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ga-IE
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\fil-PH
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\fa-IR
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\eu-ES
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\et-EE
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\es-MX
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\cy-GB
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ca-ES
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\bn-IN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\be-BY
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\as-IN
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\am-ET
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\af-ZA
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\Provisioning
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\DiagTrack
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2026-04-15 21:20 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Common Files\System
2026-04-15 21:20 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\servicing
2026-04-15 21:19 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth
2026-04-15 19:21 - 2024-04-01 09:26 - 000282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2026-04-15 19:21 - 2024-04-01 09:26 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2026-04-15 19:04 - 2025-03-02 04:26 - 003268096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2026-04-15 13:59 - 2025-01-08 19:56 - 000000000 ____D C:\WINDOWS\system32\MRT
2026-04-15 13:57 - 2025-01-08 19:56 - 218249592 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2026-04-14 03:00 - 2025-12-27 21:22 - 000000130 _____ C:\Users\nadas\AppData\LocalLow\15f9f0c61c274f2bc03997dc23d52aac2148f50f7860efe8d17557ed3d3b184d
2026-04-14 03:00 - 2022-11-03 06:32 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================